cuneiform crashes on x64 in v0compev.c:ev_vector_cnt()

Bug #916191 reported by Dmitry Katsubo
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
Cuneiform for Linux
New
Undecided
Unassigned

Bug Description

I have segfault under unknown conditions on x64 platform for Cuneiform 1.1.0.

In my case it seems that "ep" pointer in memory range
7ffff049d000-7ffff0501000 rw-p 00000000 00:00 0
was incremented until it reached this area:
7ffff0501000-7ffff0521000 r-xp 00000000 fd:06 120221 /usr/lib64/libleo32.so.1.1.0
and write operation *ep++=... caused segfault.

See attaches for more details.

Tags: segfault
Revision history for this message
Dmitry Katsubo (dma-k) wrote :
Revision history for this message
Dmitry Katsubo (dma-k) wrote :
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.